diff options
author | Reyk Floeter <reyk@cvs.openbsd.org> | 2010-06-27 05:49:06 +0000 |
---|---|---|
committer | Reyk Floeter <reyk@cvs.openbsd.org> | 2010-06-27 05:49:06 +0000 |
commit | c0728d07cb9f081d4ebd094f5475f3542a8db633 (patch) | |
tree | 13f1fdc2452565ee64dda4df363326d9f620aa32 /sys/arch/sparc/dev/esp.c | |
parent | 8eb100c81f1d8479b193b2a578ca0088b69b3ea0 (diff) |
When a peer requests a certificate from the local gateway, we first
lookup a cert from /etc/iked/certs/ that is signed by a requested CA.
As a second step we also compare the subjectAltName of any found
certificate now to match the local srcid; this allows to have multiple
certs for the same CA but different srcids in the certs/ directory but
enforces that the subjectAltName has to be set correctly.
requested by jsg@
Diffstat (limited to 'sys/arch/sparc/dev/esp.c')
0 files changed, 0 insertions, 0 deletions